Vulnerability index

Browse CVEs

19 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Napoca HIGH 7.8
CVE-2026-10046

Bitdefender Napoca bare-metal hypervisor contains an out-of-bounds write vulnerability in the BIOS INT 0x15 / E820 memory map handler, implemented in…

Mitigation only
Fix from $1,950 2026-06-02
Napoca HIGH 7.8
CVE-2026-10047

The Bitdefender Napoca bare-metal hypervisor contains an out-of-bounds write vulnerability in the real-mode hook handler, implemented in napoca/kerne…

Mitigation only
Fix from $1,950 2026-06-02
Box Firmware HIGH 8.8
CVE-2024-13871

A command injection vulnerability exists in the /check_image_and_trigger_recovery API endpoint of Bitdefender Box 1 (firmware version 1.3.11.490). Th…

Mitigation only
Fix from $1,950 2025-03-12
Endpoint Security CRITICAL 9.8
CVE-2024-2223

An Incorrect Regular Expression vulnerability in Bitdefender GravityZone Update Server allows an attacker to cause a Server Side Request Forgery and …

Mitigation only
Fix from $2,300 2024-04-09
Endpoint Security CRITICAL 9.8
CVE-2024-2224

Improper Limitation of a Pathname to a Restricted Directory (‘Path Traversal’) vulnerability in the UpdateServer component of Bitdefender GravityZone…

Mitigation only
Fix from $2,300 2024-04-09
Antivirus HIGH 7.8
CVE-2023-6154

A configuration setting issue in seccenter.exe as used in Bitdefender Total Security, Bitdefender Internet Security, Bitdefender Antivirus Plus, Bitd…

Mitigation only
Fix from $1,950 2024-04-01
Hypervisor Introspection MEDIUM 5.5
CVE-2020-15293

Memory corruption in IntLixCrashDumpDmesg, IntLixTaskFetchCmdLine, IntLixFileReadDentry and IntLixFileGetPath due to insufficient guest-data input va…

Mitigation only
Fix from $1,600 2020-12-17
Box 2 Firmware CRITICAL 9.8
CVE-2019-17095

A command injection vulnerability has been discovered in the bootstrap stage of Bitdefender BOX 2, versions 2.1.47.42 and 2.1.53.45. The API method `…

No fix yet
Fix from $2,300 2020-01-27
Safepay HIGH 8.8
CVE-2019-6736

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Bitdefender SafePay 23.0.10.34. User interaction …

Mitigation only
Fix from $1,950 2019-06-03
Safepay HIGH 8.8
CVE-2019-6737

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Bitdefender SafePay 23.0.10.34. User interaction …

Mitigation only
Fix from $1,950 2019-06-03
Safepay HIGH 8.8
CVE-2019-6738

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Bitdefender SafePay 23.0.10.34. User interaction …

Mitigation only
Fix from $1,950 2019-06-03
Gravityzone CRITICAL 9.8
CVE-2018-8955

The installer for BitDefender GravityZone relies on an encoded string in a filename to determine the URL for installation metadata, which allows remo…

No fix yet
Fix from $2,300 2018-10-24
Total Security HIGH 7.8
CVE-2018-6183

BitDefender Total Security 2018 allows local users to gain privileges or cause a denial of service by impersonating all the pipes through a use of an…

Mitigation only
Fix from $1,950 2018-03-12
Total Security HIGH 7.0
CVE-2017-10950

This vulnerability allows local attackers to execute arbitrary code on vulnerable installations of Bitdefender Total Security 21.0.24.62. An attacker…

Mitigation only
Fix from $1,950 2017-08-29
Bitdefender Total Security 2010 MEDIUM 6.2
CVE-2010-5154

Race condition in BitDefender Total Security 2010 13.0.20.347 on Windows XP allows local users to bypass kernel-mode hook handlers, and execute dange…

Mitigation only
Fix from $1,600 2012-08-25
Antivirus HIGH 9.3
CVE-2008-5409EPSS 11%

Unspecified vulnerability in the pdf.xmd module in (1) BitDefender Free Edition 10 and Antivirus Standard 10, (2) BullGuard Internet Security 8.5, an…

No fix yet
Fix from $1,950 2008-12-10
Update Server HIGH 7.8
CVE-2008-0396EPSS 9%

Directory traversal vulnerability in BitDefender Update Server (http.exe), as used in BitDefender products including Security for Fileservers and Ent…

No fix yet
Fix from $1,950 2008-01-23
Antivirus CRITICAL 9.8
CVE-2007-5775EPSS 27%

Unspecified vulnerability in BitDefender allows attackers to execute arbitrary code via unspecified vectors, aka EEYEB-20071024. NOTE: as of 2007102…

No fix yet
Fix from $2,300 2007-11-01
Bitdefender Client HIGH 7.2
CVE-2007-0391

Format string vulnerability in the log creation functionality of BitDefender Client Professional Plus 8.02 allows attackers to execute arbitrary code…

Mitigation only
Fix from $1,950 2007-01-19